|
134 | 134 | <version.findsecbugs>2.0.0-M3</version.findsecbugs>
|
135 | 135 | <version.fluido>2.0.0-M9</version.fluido>
|
136 | 136 | <version.powermock>2.0.9</version.powermock>
|
137 |
| - <version.spotbugs>4.8.5</version.spotbugs> |
138 |
| - <version.spotbugs.maven>4.8.5.0</version.spotbugs.maven> |
139 |
| - <version.surefire>3.2.5</version.surefire> |
| 137 | + <version.spotbugs>4.8.6</version.spotbugs> |
| 138 | + <version.spotbugs.maven>4.8.6.2</version.spotbugs.maven> |
| 139 | + <version.surefire>3.3.0</version.surefire> |
140 | 140 | <project.java.target>1.8</project.java.target>
|
141 | 141 | <!-- TODO: Be sure to update. Should be date of previous official release -->
|
142 | 142 | <!-- Exact date in the form 'yyyy-dd-yy 00:00:00' should be used. You can find the previous release date -->
|
|
233 | 233 | <dependency>
|
234 | 234 | <groupId>org.apache.commons</groupId>
|
235 | 235 | <artifactId>commons-collections4</artifactId>
|
236 |
| - <version>4.5.0-M1</version> |
| 236 | + <version>4.5.0-M2</version> |
237 | 237 | </dependency>
|
238 | 238 | <dependency>
|
239 | 239 | <groupId>org.apache-extras.beanshell</groupId>
|
|
243 | 243 | <dependency>
|
244 | 244 | <groupId>org.owasp.antisamy</groupId>
|
245 | 245 | <artifactId>antisamy</artifactId>
|
246 |
| - <version>1.7.5</version> |
| 246 | + <version>1.7.6</version> |
247 | 247 | <exclusions>
|
248 | 248 | <!-- excluded because we directly import newer version below. -->
|
249 | 249 | <exclusion>
|
|
274 | 274 | <version>1.4.01</version>
|
275 | 275 | </dependency>
|
276 | 276 |
|
277 |
| - <!-- |
278 |
| - FORCE SPECIFIC VERSIONS OF TRANSITIVE DEPENDENCIES EXCLUDED ABOVE. |
279 |
| - This is to force patched versions of these libraries with known CVEs against them. |
280 |
| - --> |
281 |
| - <dependency> |
282 |
| - <!-- We include this, because Commons File Upload still includes an |
283 |
| - old one, but AntiSamy 1.7.4 includes a newer one (2.14.0), which causes the goal |
284 |
| - org.apache.maven.plugins:maven-enforcer-plugin:3.3.0:enforce to fail |
285 |
| - in DependencyConvergence. |
286 |
| - --> |
287 |
| - <groupId>commons-io</groupId> |
288 |
| - <artifactId>commons-io</artifactId> |
289 |
| - <version>2.15.1</version> |
290 |
| - </dependency> |
291 |
| - |
292 | 277 | <!-- SpotBugs dependencies -->
|
293 | 278 | <dependency>
|
294 | 279 | <groupId>com.github.spotbugs</groupId>
|
|
423 | 408 | <plugin>
|
424 | 409 | <groupId>org.apache.maven.plugins</groupId>
|
425 | 410 | <artifactId>maven-dependency-plugin</artifactId>
|
426 |
| - <version>3.6.1</version> |
| 411 | + <version>3.7.1</version> |
427 | 412 | </plugin>
|
428 | 413 | <plugin>
|
429 | 414 | <groupId>org.apache.maven.plugins</groupId>
|
430 | 415 | <artifactId>maven-release-plugin</artifactId>
|
431 |
| - <version>3.0.1</version> |
| 416 | + <version>3.1.0</version> |
432 | 417 | </plugin>
|
433 | 418 | <plugin>
|
434 | 419 | <groupId>org.codehaus.mojo</groupId>
|
435 | 420 | <artifactId>versions-maven-plugin</artifactId>
|
436 |
| - <version>2.16.2</version> |
| 421 | + <version>2.17.0</version> |
437 | 422 | <configuration>
|
438 | 423 | <rulesUri>file:${project.basedir}/versionRuleset.xml</rulesUri>
|
439 | 424 | </configuration>
|
|
488 | 473 | <plugin>
|
489 | 474 | <groupId>org.apache.maven.plugins</groupId>
|
490 | 475 | <artifactId>maven-clean-plugin</artifactId>
|
491 |
| - <version>3.3.2</version> |
| 476 | + <version>3.4.0</version> |
492 | 477 | </plugin>
|
493 | 478 |
|
494 | 479 | <plugin>
|
|
543 | 528 | <plugin>
|
544 | 529 | <groupId>org.apache.maven.plugins</groupId>
|
545 | 530 | <artifactId>maven-enforcer-plugin</artifactId>
|
546 |
| - <version>3.4.1</version> |
| 531 | + <version>3.5.0</version> |
547 | 532 | <dependencies>
|
548 | 533 | <dependency>
|
549 | 534 | <groupId>org.codehaus.mojo</groupId>
|
|
553 | 538 | <dependency>
|
554 | 539 | <groupId>org.codehaus.mojo</groupId>
|
555 | 540 | <artifactId>animal-sniffer-enforcer-rule</artifactId>
|
556 |
| - <version>1.23</version> |
| 541 | + <version>1.24</version> |
557 | 542 | </dependency>
|
558 | 543 | </dependencies>
|
559 | 544 |
|
|
636 | 621 | <plugin>
|
637 | 622 | <groupId>org.apache.maven.plugins</groupId>
|
638 | 623 | <artifactId>maven-jar-plugin</artifactId>
|
639 |
| - <version>3.4.1</version> |
| 624 | + <version>3.4.2</version> |
640 | 625 | <configuration>
|
641 | 626 | <archive>
|
642 | 627 | <manifest>
|
|
648 | 633 | </plugin>
|
649 | 634 |
|
650 | 635 | <plugin>
|
651 |
| - <groupId>org.apache.maven.plugins</groupId> |
652 |
| - <artifactId>maven-javadoc-plugin</artifactId> |
653 |
| - <version>3.6.3</version> |
| 636 | + <groupId>org.apache.maven.plugins</groupId> |
| 637 | + <artifactId>maven-javadoc-plugin</artifactId> |
| 638 | + <version>3.7.0</version> |
654 | 639 | <configuration>
|
655 | 640 | <source>8</source>
|
656 | 641 | <doclint>none</doclint>
|
|
668 | 653 | <plugin>
|
669 | 654 | <groupId>org.apache.maven.plugins</groupId>
|
670 | 655 | <artifactId>maven-jxr-plugin</artifactId>
|
671 |
| - <version>3.3.2</version> |
| 656 | + <version>3.4.0</version> |
672 | 657 | </plugin>
|
673 | 658 |
|
674 | 659 | <plugin>
|
675 | 660 | <groupId>org.apache.maven.plugins</groupId>
|
676 | 661 | <artifactId>maven-pmd-plugin</artifactId>
|
677 |
| - <version>3.22.0</version> |
| 662 | + <version>3.23.0</version> |
678 | 663 | </plugin>
|
679 | 664 |
|
680 | 665 | <plugin>
|
681 | 666 | <groupId>org.apache.maven.plugins</groupId>
|
682 | 667 | <artifactId>maven-project-info-reports-plugin</artifactId>
|
683 |
| - <version>3.5.0</version> |
| 668 | + <version>3.6.1</version> |
684 | 669 | </plugin>
|
685 | 670 |
|
686 | 671 | <plugin>
|
|
694 | 679 | The skin is referenced in src/site/site.xml. -->
|
695 | 680 | <groupId>org.apache.maven.plugins</groupId>
|
696 | 681 | <artifactId>maven-site-plugin</artifactId>
|
697 |
| - <version>4.0.0-M14</version> |
| 682 | + <version>4.0.0-M15</version> |
698 | 683 | <dependencies>
|
699 | 684 | <dependency>
|
700 | 685 | <groupId>org.apache.maven.skins</groupId>
|
|
755 | 740 | <plugin>
|
756 | 741 | <groupId>org.owasp</groupId>
|
757 | 742 | <artifactId>dependency-check-maven</artifactId>
|
758 |
| - <version>9.2.0</version> |
| 743 | + <version>10.0.2</version> |
759 | 744 | <configuration>
|
760 | 745 | <nvdApiKey>${env.NVD_API_KEY}</nvdApiKey>
|
761 | 746 | <failBuildOnCVSS>1.0</failBuildOnCVSS>
|
|
0 commit comments